DeFi Intel

Lazarus Group threat actor

Threat actor · PageRank 0.0119

Also known as: APT38, Hidden Cobra, TraderTraitor

Source: en.wikipedia.org

Overview

Lazarus Group is a North Korean state-sponsored cybercrime group, known for a series of high-profile hacking operations including the 2014 Sony Pictures attack and the 2016 Bangladesh Bank heist. The group primarily engages in financial theft, espionage, and disruptive attacks using advanced malware and social engineering tactics.

Within the DeFi Intel graph, Lazarus Group connects to 1 tracked entity, most strongly to Bybit.

Relations

Top connections in the DeFi Intel knowledge graph (confidence-weighted, 1 of 1 total).

RelationConnected entityConfidence
attackedBybit95%

Frequently asked questions

What is Lazarus Group?

Lazarus Group is a hacking group attributed to North Korea, responsible for numerous cyberattacks targeting financial institutions, cryptocurrency exchanges, and government entities.

What are some of the group's most notable attacks?

The group is known for the 2014 Sony Pictures hack, the 2016 theft from the Bangladesh central bank, and the 2017 WannaCry ransomware attack.

Is Lazarus Group state-sponsored?

Security researchers and governments widely attribute Lazarus Group to the North Korean state, specifically the Reconnaissance General Bureau.

What is Lazarus Group connected to?

In the DeFi Intel knowledge graph, Lazarus Group is linked to 1 other tracked entity, most strongly to Bybit.

Sources

Continue in DeFi Intel app
Live news feed, full graph, and search.
Open Lazarus Group profile →

Stay current on Lazarus Group

Get the weekly DeFi Intel brief — entity-graph intelligence on Lazarus Group and threat-actor activity delivered free to your inbox.